1 to 25 of 76 Permanent MITRE ATT&CK Jobs in London

Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Operations Centre (SOC) activities, expanding log coverage, and building high-quality detections in our SIEM. You will use frameworks such as MITRE ATT&CK and MITRE D3FEND to assess threat scenarios, prioritize detection engineering work, and strengthen both preventative and detective controls. What … operations, including monitoring, triage, investigation, and response to security alerts. Assess the company threat landscape using MITRE ATT&CK and MITRE D3FEND to identify detection and mitigation opportunities. Connect and maintain log sources into our SIEM to ensure relevant coverage across corporate ...

Senior Cloud Security Engineer

Hiring Organisation
Checkout.com
Location
London, United Kingdom
Salary
£ 80 K
maintain modern SIEM platform (e.g. Sentinel) including KQL detection rules, workbooks, logging pipelines, and AI-assisted alert triage.Map detection coverage against MITRE ATT&CK tactics and techniques. Identify and close visibility gaps across the cloud estate.Maintain alignment to PCI DSS, SOC2, ISO27001 NIST … proficiency in Python, PowerShell, or Bash for security automation.Strong grasp of PCI DSS, NIST CSF, SOC 2, ISO27001, CIS Benchmarks, and MITRE ATT&CK for Cloud.Nice to haveAZ-500, AWS Certified Security – Specialty, or equivalent cloud security certification.Experience integrating ATT&CK Navigator ...

Cloud Platform Security Engineer Software engineering London

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
modern SIEM platform (e.g. Sentinel) including KQL detection rules, workbooks, logging pipelines, and AI-assisted alert triage. Map detection coverage against MITRE ATT&CK tactics and techniques. Identify and close visibility gaps across the cloud estate. Maintain alignment to PCI DSS, SOC2, ISO27001 NIST … Python, PowerShell, or Bash for security automation. Strong grasp of PCI DSS, NIST CSF, SOC 2, ISO27001, CIS Benchmarks, and MITRE ATT&CK for Cloud. Nice to have AZ-500, AWS Certified Security – Specialty, or equivalent cloud security certification. Experience integrating ATT&CK ...

Senior Cyber Security Analyst

Hiring Organisation
Lightsource bp
Location
London, United Kingdom
Salary
£ 80 K
related toolsets to detect signs of compromise and investigate security events to completion Proactively conduct threat hunting using threat intelligence frameworks (MITRE ATT&CK, Cyber Kill Chain) and available security platforms to identify and mitigate emerging threats Assess new and evolving cyber threats … Demonstrable experience responding to cyber threats and working in an Azure-focused cloud environment Proven experience with the Cyber Kill Chain, MITRE ATT&CK, and other security defence and intelligence frameworks Experience in stakeholder management and engagement at C-Suite level Experience working for Critical ...

Security Operations Engineer

Hiring Organisation
CloudBees
Location
London, United Kingdom
Salary
£ 80 K
Create high-fidelity detections using operational threat intelligence, incident learnings and purple team findings. Measure and improve detection coverage using the MITRE ATT&CK framework. Continuously reduce false positives while improving visibility into emerging attacker techniques.SOAR & Automation EngineeringDesign and maintain SOAR playbooks that automate alert … similar languages. Experience working within cloud environments (AWS preferred; Azure or GCP experience also valued). Solid understanding of the MITRE ATT&CK framework. Experience supporting security incident response. Comfortable working with Git, APIs and engineering workflows. Excellent communication skills with both Security and Engineering ...

Security Operations Analyst (Assistant Vice President)

Hiring Organisation
Jefferies Financial Group
Location
London, United Kingdom
Salary
£ 100 K
candidate will possess strong analytical skills, solid knowledge in cybersecurity, networking, cloud technologies, security frameworks such as NIST and/or MITRE ATT&CK, and hands-on experience with enterprise security tools and platforms. This role requires a minimum of 4 years of experience … other email-based threats.Monitor Data Leak Protection (DLP) tools and investigate potential unauthorized data exfiltration events.Conduct threat hunting activities using MITRE ATT&CK framework to proactively identify adversary techniques within the environment.Collaborate with IT, Infrastructure, networking, and application teams to investigate security events and support ...

Security and Privacy Operations Analyst

Hiring Organisation
Knight Frank
Location
London, United Kingdom
Salary
£ 80 K
experience writing KQL queries, PowerShell, or CLI commands.Exposure to automation or playbooks (Logic Apps, Defender workflows).Knowledge of frameworks such as MITRE ATT&CK or NIST CSF.Relevant certifications such as:SC‐900, SC‐200 (or working toward), AZ‐900, AZ‐500CISSP, CIPP/E, CompTIA … experience writing KQL queries, PowerShell, or CLI commands.Exposure to automation or playbooks (Logic Apps, Defender workflows).Knowledge of frameworks such as MITRE ATT&CK or NIST CSF.Relevant certifications such as:SC‐900, SC‐200 (or working toward), AZ‐900, AZ‐500CISSP, CIPP/E, CompTIA ...

Interim Cyber Security Officer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
implement SOAR workflows to automate detection, response, and security operations processes. Conduct proactive threat hunting using SIEM/EDR data and MITRE ATT&CK‐aligned techniques. Support vulnerability assessment and security scanning activities using relevant tools. Provide input into penetration testing activities and interpret findings … Security (ES). Solid understanding of network protocols, cloud security (AWS/Azure), and threat detection methodologies. Working knowledge of the MITRE ATT&CK framework. Experience building automation or SOAR playbooks for security operations. CrowdStrike certifications (CCFA/CCFR/CCSE – any combination preferred). ...

Cyber Threat Intelligence Expert – SOC | Threat Hunting | Incident Response

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
assessments. SupportSOC operations with threat context and priority setting. Identifyand monitor Indicators of Compromise (IOCs) and Tactics, Techniques &Procedures (TTPs) using MITRE ATT&CK framework. Collaborateon play-book development and threat detection use cases. Performattribution and malware behavioural analysis to inform decision-making. Leadthreat actor … e.g., MISP, Anomali, ThreatConnect) Strongknowledge of malware families, TTPs, and IOC tracking Experienceusing SIEM, SOAR, and endpoint detection tools Workingknowledge of MITRE ATT&CK, Cyber Kill Chain, and Diamond Model Abilityto produce high-quality, executive-ready threat reports Desired Skills Certificationssuch as GCTI, GREM, GCIA ...

Senior Detection & Threat Engineer

Hiring Organisation
Checkout.com
Location
London, United Kingdom
Salary
£ 80 K
proactive threat hunting based on attacker behaviour, not vendor alertsTranslating threat intelligence and incident learnings into durable, reusable detectionsMapping detections to MITRE ATT&CK and real-world attack pathsReducing alert fatigue through logic refinement, correlation, and contextual enrichmentAdvising and supporting during high-severity security incidents … plane, SaaS)Familiarity with threat intelligence platforms and frameworks such as PCI DSS, NIST CSF, SOC 2, ISO27001, CIS Benchmarks, and MITRE ATT&CK for Cloud.Additional InformationBring all of you to workWe create the conditions for high performers to thrive, through real ownership, fewer blockers ...

Senior Cyber Detection and Response Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
build and continuously improve detection content, managed as code and version-controlled, mapping coverage to adversary tactics and techniques using the MITRE ATT&CK framework and prioritising the techniques most relevant to a financial services SaaS provider. Telemetry and visibility – maintain a clear view … detections. Working knowledge of cloud security and native cloud telemetry sources (AWS and/or Azure). Practical use of the MITRE ATT&CK framework to structure detection coverage and gap analysis. Hands-on experience building and operating SOAR playbooks and response automation, orchestrating across ...

Senior Cyber Security Analyst (OWASP / SAST /DAST )

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
support remediation of application security issues. Threat Modelling & Security Risk Assessments – Conduct threat modelling exercises using frameworks such as STRIDE or MITRE ATT&CK, identify potential security threats, vulnerabilities and attack scenarios within applications and supporting infrastructure, perform structured security risk assessments and provide remediation … Lifecycle (SSDLC) OWASP Top 10 and secure coding practices Application security testing (SAST/DAST/SCA) Threat modelling methodologies (STRIDE, MITRE ATT&CK) Vulnerability management and remediation Secure architecture and design reviews DevSecOps and CI/CD security integration API security and modern application ...

Senior Analyst - Tactical Intelligence

Hiring Organisation
NCC Group
Location
London, United Kingdom
Salary
£ 80 K
campaigns, providing context-rich assessments that combine technical findings with geopolitical and regional context.Map observed threat activity to established frameworks (e.g., MITRE ATT&CK) and produce structured intelligence outputs using formats such as STIX/TAXII.Conduct technical analysis of malware samples to support intelligence assessments … infrastructure analysis.Strong understanding of networking protocols (e.g., TCP/IP, DNS) and how adversaries leverage network infrastructure.Familiarity with frameworks such as MITRE ATT&CK and structured intelligence formats, including STIX/TAXII.Experience supporting or interfacing with DFIR and SOC teams in an operational capacity.Understanding ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
Willis Towers Watson
Location
London, United Kingdom
Salary
£ 100 K
hunting at scaleDetection-as-code, CI/CD of detection content, and security content managementStrong knowledge of adversary tradecraft and frameworks:MITRE ATT&CK, MITRE Engage, MITRE D3FEND, and the cyber kill chainExperience leveraging Agentic AI, Microsoft Security Copilot ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
Greater London, United Kingdom
Employment Type
Full Time
scale Detection-as-code, CI/CD of detection content, and security content management Strong knowledge of adversary tradecraft and frameworks: MITRE ATT&CK, MITRE Engage, MITRE D3FEND, and the cyber kill chain Experience leveraging Agentic AI, Microsoft Security Copilot ...

Senior Threat Hunter (Specialist I - Information Security) - London

Hiring Organisation
UST Global
Location
London, United Kingdom
Salary
£ 80 K
scalable, automated, and repeatable threat hunting frameworks across large datasets in enterprise environments.Key ResponsibilitiesPerform proactive, hypothesis-driven threat hunting aligned to MITRE ATT&CKAnalyze and investigate security data across endpoint, network, and cloud environmentsIdentify indicators of compromise, suspicious activity, and emerging threatsDevelop and maintain Jupyter Notebook-based … Python (Pandas preferred)Jupyter NotebooksExperience working with: SIEM/EDR/XDR platformsLarge-scale security telemetry and data analysisStrong understanding of: MITRE ATT&CK framework and attacker TTPsWindows and Linux operating systemsNetwork traffic and log analysisExperience in cloud threat hunting (AWS, Azure, GCP)Good understanding ...

Security Operations Analyst

Hiring Organisation
Matchtech
Location
London, United Kingdom
Salary
£ 80 K
Threat Modelling exercises and risk assessments.Knowledge of threat actor tactics, techniques, and procedures (TTPs).Understanding of common attack frameworks such as MITRE ATT&CK and Cyber Kill Chain.Experience investigating security events and supporting incident response activities.Strong analytical, investigative, and problem-solving skills.Ability to assess cyber ...

Crowdstrike Technical Consulting Manager

Hiring Organisation
Accenture
Location
London, United Kingdom
Salary
£ 80 K
compliance frameworks: NIST CSF, SOC 2, ISO 27001, DORA, HIPAA, or FedRAMP Familiarity with threat intelligence operationalization (CrowdStrike CAO/Intel, MITRE ATT&CK, adversary tracking) About AccentureAccenture is a leading global professional services company that helps the world’s leading businesses, governments and other ...

Crowdstrike Pre-Sales Senior Manager

Hiring Organisation
Accenture
Location
London, United Kingdom
Salary
£ 80 K
compliance frameworks: NIST CSF, SOC 2, ISO 27001, DORA, HIPAA, or FedRAMPFamiliarity with threat intelligence operationalization (CrowdStrike CAO/Intel, MITRE ATT&CK, adversary tracking)About AccentureAccenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations ...

Threat Intelligence Analyst

Hiring Organisation
Matchtech
Location
London, United Kingdom
Salary
£ 80 K
supporting Platform Security initiatives within complex environments.Understanding of Security Architecture Design and secure-by-design principles.Familiarity with cyber frameworks such as MITRE ATT&CK, NIST, or Cyber Kill Chain.Experience producing intelligence reports and presenting findings to stakeholders.Strong analytical and problem-solving abilities.Excellent written and verbal ...

Information Security Team Lead

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
Pentera, etc.) Hands‐on experience across Azure and Microsoft security stack Scripting/automation capability (PowerShell, Python, Bash) Strong grounding in MITRE ATT&CK, OWASP, and modern threat vectors Background in insurance, financial services, or regulated environments is highly beneficial If you are looking ...

Cyber Security Analyst

Hiring Organisation
Accenture
Location
London, United Kingdom
Salary
£ 80 K
Splunk SIEM, to enable the detection of threats across diverse platforms (e.g. cloud, endpoints, and networks)· Use frameworks like MITRE ATT&CK to map detection rules and maximise threat coverage· Use analytical platforms to query high volume datasets to identify trends and spot unusual behaviours ...

AMBG - Cloud Security & Exposure Management Architect

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
environments. Understand how threat actors exploit misconfigurations, identity weaknesses, vulnerable assets, exposed services, and weak security controls. Apply frameworks such as MITRE ATT&CK to help clients understand attack paths, prioritise exposures, and improve cyber defence maturity. Understand the business, privacy, security, and compliance challenges ...

SecOps Specialist

Hiring Organisation
Teya Solutions
Location
London, United Kingdom
Salary
£ 80 K
detection-as-code where possible.• Reduce false positives and improve detection quality and coverage.• Map detections to threat behaviours (e.g. MITRE ATT&CK).• Validate detections through testing, incidents, and simulations.Log & Telemetry Management• Onboard and maintain log sources across cloud, identity, endpoint, network, and SaaS. ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
with Microsoft SentinelFamiliarity with Microsoft Defender tools (Endpoint & O365)Exposure to Azure cloud logging and Kubernetes environmentsKnowledge of attacker TTPs and MITRE ATT&CK frameworksProactive, collaborative, and innovative mindsetDesirable/Nice-to-Have:Experience with Python, Terraform, or CI/CD pipelinesFamiliarity with Microsoft Purview ...